Modern protection. Trusted access. Enterprise scale.

ICS 25.x combines secure remote access with Oracle Linux 9, enforced system controls and enhanced gateway protection, helping organisations modernise connectivity and progress toward zero trust.

Modernise performance and scalability

Build secure access on Oracle Linux 9 with a 64-bit architecture designed to support larger data sets, more connections and enterprise-scale workloads while improving processing performance and compatibility.

A modern data center with rows of server racks and visible cooling ducts overhead. Blue digital lines and glowing elements overlay the image, representing data flow and network activity within the facility.

Reduce gateway attack surface

Strengthen protection with SELinux enabled in enforcement mode and system processes operating with only the privileges they require. These controls limit access to files and resources and reduce the potential impact of compromised processes.

A man looking at a computer screen
Ivanti Connect Secure 25.X represents what's possible when a vendor commits fully to kernel-level security, not as a reactive measure, but as a fundamental architectural principle.

Defend against application-layer attacks

Inspect HTTP traffic terminating on ICS gateways with an NGINX-based web server and integrated Web Application Firewall. Stop threats such as SQL injection and cross-site scripting while improving visibility into web-related security events.

A man with headphones on working on a laptop

Establish trust from start-up to connection

Protect gateway integrity with secure boot, TPM or vTPM support and unique randomised keys for every gateway. ICS extends integrity validation across additional file systems and supports trusted execution for hardware and virtual appliances.

A woman working at a laptop

Features and capabilities

Flexible access. Stronger control. Simplified operations.

Unified secure access client

Provide remote VPN and local network access through one client, with support for Windows, macOS, Linux, iOS, Android and Android applications on ChromeOS.

Passwordless authentication

Support FIDO2 authentication using passkeys, biometrics and PINs for a more secure, user-friendly sign-in experience.

Intelligent split tunnelling

Route selected resources through the VPN using FQDN-based split tunnelling while allowing other Internet traffic to connect directly, reducing VPN bandwidth usage.

Dynamic conditional access

Evaluate users and devices against automated policies and control each access attempt in real time.

Stateful endpoint assessment

Assess endpoint security before authentication and support quarantine and remediation when required.

Flexible VPN connectivity

Support full Layer 3 VPN, per-app VPN, on-demand VPN, always-on access, lockdown mode and FQDN or IP/network-based split tunnelling.

Clientless application access

Give users browser-based access to published applications, virtual desktops and other resources without requiring an installed client.

Centralised integrity checking

Run the External Integrity Checker Tool from Ivanti Neurons for Secure Access against one or multiple gateways, review results centrally and receive alerts when anomalies are identified.

Centralised management and analytics

Use Ivanti Neurons for Secure Access for configuration management, one-click upgrades, centralised logging, reporting and troubleshooting across ICS deployments.

Flexible deployment

Deploy ICS through physical appliances or virtual appliances on VMware ESXi, KVM, Microsoft Hyper-V, Microsoft Azure, AWS and Google Cloud.

Security certifications

ICS 25.x and Ivanti Secure Access Client for Windows are FIPS 140-3 certified using the OpenSSL provider/module for Oracle Linux 9.

Ready to modernise secure remote access?

Protect distributed users and applications with modern gateway security, flexible connectivity and a practical path toward zero trust.